Vulnerabilidades en dgtlmoon
30 resultadosAnálisis Vexday
A dgtlmoon apresenta 19 vulnerabilidades catalogadas, com 2 críticas, mas nenhuma sob ataque ativo no momento. A fraqueza dominante é path traversal (CWE-22), um vetor clássico de comprometimento de integridade; apenas 2 CVEs foram publicadas nos últimos 90 dias, sugerindo um risco estável e sem escalação recente.
CVE-2026-35000HIGHChangeDetection.io < 0.54.7 SafeXPath3Parser Bypass Arbitrary File ReadEPSS 0.5%CVE-2026-95270MEDIUMdgtlmoon changedetection.io Hash Comparison flask_app.py check_password timing discrepancyEPSS 0.4%CVE-2025-62780LOWchangedetection.io vulnerable to stored XSS in Watch update via APIEPSS 0.4%CVE-2026-95657MEDIUMdgtlmoon Changedetection.io Visual Selector visual-selector.js setCurrentSelectedText cross site scriptingEPSS 0.4%CVE-2026-41895HIGHchangedetection.io: XXE vulnerability in the changedetection.io projectEPSS 0.4%CVE-2026-29038MEDIUMchangedetection.io: Reflected XSS in RSS Tag Error ResponseEPSS 0.3%CVE-2026-71204MEDIUMchangedetection.io - Omitted Checkbox in /settings Save Silently Disables API Key EnforcementEPSS 0.3%CVE-2026-71203MEDIUMchangedetection.io - Missing Authentication on /api/v1/full-spec Discloses Full OpenAPI SchemaEPSS 0.3%CVE-2026-92814LOWchangedetection.io through 0.60.6 Cross-Site Scripting via watch_titleEPSS 0.3%CVE-2026-71205MEDIUMchangedetection.io - No Rate Limiting on /login Enables Unlimited Password Brute-ForceEPSS 0.3%